Back to all articles

Deepfakes and AI Voice Scams: What's Real, What's Not

The technology that clones a voice from a few seconds of audio, or generates a convincing video of someone saying things they never said, is no longer a research curiosity. It's a scam tool in active use.

The technology that clones a voice from a short audio sample, or generates a convincing video of someone saying things they never said, is no longer a research curiosity or a movie plot device. It's an active scam tool, and the barrier to using it has dropped low enough that it doesn't take a sophisticated attacker anymore — just someone willing to try.

How the scam actually plays out

The pattern is consistent regardless of the exact technology used: a voice note, phone call, or short video arrives that sounds or looks like someone you know — often a family member — in some kind of urgent trouble, needing money sent immediately, sometimes with a request to keep it quiet from other family members "for now." The voice or face is convincing enough that the usual instinct to verify gets overridden by the emotional urgency of the message.

Public voice and video posted on social media — a video call clip, a voice note shared in a group, even a public Instagram Reel — is often all that's needed as source material. This is part of why oversharing publicly, covered in the social media privacy piece on this site, connects directly to this specific risk.

Why "it sounded just like them" isn't proof anymore

This is the central shift worth internalising: voice and video are no longer reliable proof of identity on their own. That doesn't mean panic or distrust of every call — it means the verification step that used to be optional (because voice was hard to fake) is now necessary.

The verification habit that actually works

Agree, in advance and as a family, on one simple rule: any urgent request for money delivered by call, voice note, or video gets a callback on the number you already have saved for that person, before anything is sent. Not a reply to the same message or number — an independent call, on a channel the scammer doesn't control. A real emergency survives a two-minute verification call without issue.

A second useful habit, particularly for older family members who may be less familiar with this specific risk: establish a family "code word" in a calm moment, unrelated to any crisis, that a genuine family member could use in an emergency call to help confirm identity. It's a low-tech countermeasure to a high-tech problem, and it works precisely because a scammer working from cloned audio has no way to know it.

Spotting the lower-effort fakes

Not every attempt uses sophisticated AI. Many still show the older tells: slightly unnatural pacing or tone, a request framed to prevent verification ("don't call me back, this line is bad"), and a strong push toward urgency and secrecy in the same message. Urgency plus secrecy together, regardless of how convincing the voice sounds, is the pattern worth treating as a warning sign on its own.

The short version

Treat any urgent money request delivered by voice or video the same way you'd treat one delivered by text: verify independently before acting, regardless of how convincing or familiar it sounds. The technology behind these scams will keep improving — the verification habit is what stays reliable regardless.